Logo
componentlibxml2
Name
libxml2
Version
2.15.1-r
Type
library
Description
-
Licenses
-
PURL
-
CPE
cpe:2.3:a:xmlsoft:libxml2:2.15.1:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
2.15.3-r1

Vulnerabilities#


Name
Analysis
Description
Exploitable
A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An attacker could exploit this by providing a malicious document, leading to a type confusion error that causes the application to crash. This results in a denial of service (DoS), making the affected system or application unavailable.
Exploitable
The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.